2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-51163HIGH7.5A Local File Inclusion vulnerability in Vegam Solutions Vegam 4i versions 6.3.47.0 and earlier allows a remote attacker ...
CVE-2024-51162HIGH8.8An issue in Audimex EE versions 15.1.20 and earlier allowing a remote attacker to escalate privileges. Analyzing the off...
CVE-2024-11491MEDIUM5.4A vulnerability was found in 115cms up to 20240807. It has been rated as problematic. Affected by this issue is some unk...
CVE-2024-11490MEDIUM6.1A vulnerability was found in 115cms up to 20240807. It has been declared as problematic. Affected by this vulnerability ...
CVE-2024-11489MEDIUM6.1A vulnerability was found in 115cms up to 20240807. It has been classified as problematic. Affected is an unknown functi...
CVE-2024-11488MEDIUM6.1A vulnerability was found in 115cms up to 20240807 and classified as problematic. This issue affects some unknown proces...
CVE-2024-11487HIGH8.8A vulnerability has been found in Code4Berry Decoration Management System 1.0 and classified as critical. This vulnerabi...
CVE-2024-11486MEDIUM4.3A vulnerability, which was classified as problematic, was found in Code4Berry Decoration Management System 1.0. This aff...
CVE-2024-11485HIGH8.1A vulnerability, which was classified as critical, has been found in Code4Berry Decoration Management System 1.0. Affect...
CVE-2024-11484HIGH8.8A vulnerability classified as critical was found in Code4Berry Decoration Management System 1.0. Affected by this vulner...
CVE-2024-52598HIGH7.52FAuth is a web app to manage Two-Factor Authentication (2FA) accounts and generate their security codes. Two interconne...
CVE-2024-52473HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sandeep Verma HTML...
CVE-2024-52472HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Weather Atlas Weat...
CVE-2024-52471MEDIUM6.1Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in petesheppar...
CVE-2024-52470HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in brainvireinfo Dyna...
CVE-2024-51209MEDIUM5.4Cross-Site Scripting (XSS) vulnerabilities in Anuj Kumar's Client Management System Version 1.2 allow local attackers to...
CVE-2024-51208HIGH7.2File Upload vulnerability in change-image.php in Anuj Kumar's Boat Booking System version 1.0 allows local attackers to ...
CVE-2024-10094CRITICAL9.8Pega Platform versions 6.x to Infinity 24.1.1 are affected by an issue with Improper Control of Generation of Code
CVE-2024-9479CRITICAL10Improper Privilege Management vulnerability in upKeeper Solutions upKeeper Instant Privilege Access allows Privilege Esc...
CVE-2024-9478CRITICAL10Improper Privilege Management vulnerability in upKeeper Solutions upKeeper Instant Privilege Access allows Privilege Esc...
CVE-2024-52597MEDIUM6.12FAuth is a web app to manage Two-Factor Authentication (2FA) accounts and generate their security codes. Versions prior...
CVE-2024-11154MEDIUM4.3The PublishPress Revisions: Duplicate Posts, Submit, Approve and Schedule Content Changes plugin for WordPress is vulner...
CVE-2024-10913HIGH8.8The Clone plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.4.6 via des...
CVE-2024-11495HIGH7.8Buffer overflow vulnerability in OllyDbg, version 1.10, which could allow a local attacker to execute arbitrary code due...
CVE-2024-11086Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now